Show patches with: State = Action Required       |    Archived = No       |   1069 patches
« 1 2 3 410 11 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v24,25/25] AppArmor: Remove the exclusive flag [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,24/25] LSM: Add /proc attr entry for full LSM context [v24,01/25] LSM: Infrastructure management of the sock security - 1 - --- 2021-01-26 Casey Schaufler New
[v24,23/25] Audit: Add a new record for multiple object LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,22/25] Audit: Add new record for multiple process LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,21/25] audit: add support for non-syscall auxiliary records [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,20/25] LSM: Verify LSM display sanity in binder [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,19/25] NET: Store LSM netlabel data in a lsmblob [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,18/25] LSM: security_secid_to_secctx in netlink netfilter [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,17/25] LSM: Use lsmcontext in security_inode_getsecctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,16/25] LSM: Use lsmcontext in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,15/25] LSM: Ensure the correct LSM context releaser [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler New
[v24,14/25] LSM: Specify which LSM to display [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,13/25] IMA: Change internal interfaces to use lsmblobs [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler New
[v24,12/25] LSM: Use lsmblob in security_cred_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,11/25] LSM: Use lsmblob in security_inode_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,10/25] LSM: Use lsmblob in security_task_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,09/25] LSM: Use lsmblob in security_ipc_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,08/25] LSM: Use lsmblob in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,07/25] LSM: Use lsmblob in security_secctx_to_secid [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,06/25] LSM: Use lsmblob in security_kernel_act_as [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,05/25] LSM: Use lsmblob in security_audit_rule_match [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,04/25] IMA: avoid label collisions with stacked LSMs [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,03/25] LSM: provide lsm name and id slot mappings [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,02/25] LSM: Add the lsmblob data structure. [v24,01/25] LSM: Infrastructure management of the sock security 3 - - --- 2021-01-26 Casey Schaufler New
[v24,01/25] LSM: Infrastructure management of the sock security [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
smackfs: restrict bytes count in smackfs write functions smackfs: restrict bytes count in smackfs write functions - - - --- 2021-01-24 Sabyrzhan Tasbolatov New
[v5] proc: Allow pid_revalidate() during LOOKUP_RCU [v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-01-22 Stephen Brennan New
[v5,4/4] integrity: Load mokx variables into the blacklist keyring Add EFI_CERT_X509_GUID support for dbx/mokx entries - - - --- 2021-01-22 Eric Snowberg New
[v5,3/4] certs: Add ability to preload revocation certs Add EFI_CERT_X509_GUID support for dbx/mokx entries 1 - - --- 2021-01-22 Eric Snowberg New
[v5,2/4] certs: Move load_system_certificate_list to a common function Add EFI_CERT_X509_GUID support for dbx/mokx entries 1 - - --- 2021-01-22 Eric Snowberg New
[v5,1/4] certs: Add EFI_CERT_X509_GUID support for dbx entries Add EFI_CERT_X509_GUID support for dbx/mokx entries - 1 - --- 2021-01-22 Eric Snowberg New
[v27,12/12] landlock: Add user and kernel documentation Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2021-01-21 Mickaël Salaün New
[v27,08/12] landlock: Add syscall implementations Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2021-01-21 Mickaël Salaün New
[v27,06/12] fs,security: Add sb_delete hook Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,05/12] LSM: Infrastructure management of the superblock Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,04/12] landlock: Add ptrace restrictions Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,03/12] landlock: Set up the security framework and manage credentials Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
[v27,02/12] landlock: Add ruleset and domain management Landlock LSM - - - --- 2021-01-21 Mickaël Salaün New
[v27,01/12] landlock: Add object management Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
selinux: measure state and policy capabilities selinux: measure state and policy capabilities - - - --- 2021-01-21 Lakshmi Ramasubramanian New
[v4,10/10] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,09/10] PKCS#7: Fix missing include Enable root to update the blacklist keyring - 2 - --- 2021-01-21 Mickaël Salaün New
[v4,08/10] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,07/10] certs/blacklist: fix kernel doc interface issue Enable root to update the blacklist keyring - 2 - --- 2021-01-21 Mickaël Salaün New
[v4,06/10] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,05/10] certs: Replace K{U,G}IDT_INIT() with GLOBAL_ROOT_{U,G}ID Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,04/10] certs: Fix blacklist flag type confusion Enable root to update the blacklist keyring 1 - - --- 2021-01-21 Mickaël Salaün New
[v4,03/10] certs: Fix blacklisted hexadecimal hash string check Enable root to update the blacklist keyring - 1 - --- 2021-01-21 Mickaël Salaün New
[v4,02/10] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v4,01/10] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - - - --- 2021-01-21 Mickaël Salaün New
[v6,39/40] xfs: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,38/40] ext4: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,37/40] fat: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,36/40] tests: add mount_setattr() selftests idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,35/40] fs: introduce MOUNT_ATTR_IDMAP idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,34/40] fs: add mount_setattr() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,33/40] fs: add attr_flags_to_mnt_flags helper idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,32/40] fs: split out functions to hold writers idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,31/40] namespace: only take read lock in do_reconfigure_mnt() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,30/40] mount: make {lock,unlock}_mount_hash() static idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,29/40] namespace: take lock_mount_hash() directly when changing flags idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,28/40] overlayfs: do not mount on top of idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,27/40] ecryptfs: do not mount on top of idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,26/39] ima: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,25/40] apparmor: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner New
[v6,23/40] exec: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,22/40] would_dump: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,21/40] ioctl: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,20/40] init: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,19/40] fcntl: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,18/40] utimes: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,17/40] af_unix: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,16/40] open: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,15/40] open: handle idmapped mounts in do_truncate() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,14/40] namei: prepare for idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,13/40] namei: introduce struct renamedata idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,12/40] namei: handle idmapped mounts in may_*() helpers idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,11/40] stat: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,10/40] commoncap: handle idmapped mounts idmapped mounts 1 1 - --- 2021-01-21 Christian Brauner New
[v6,09/40] xattr: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,08/40] acl: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,07/40] attr: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,06/40] inode: make init and permission helpers idmapped mount aware idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,05/39] namei: make permission helpers idmapped mount aware idmapped mounts 1 2 - --- 2021-01-21 Christian Brauner New
[v6,04/40] capability: handle idmapped mounts idmapped mounts 1 2 - --- 2021-01-21 Christian Brauner New
[v6,03/40] fs: add file and path permissions helpers idmapped mounts - 2 - --- 2021-01-21 Christian Brauner New
[v6,02/40] fs: add id translation helpers idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[v6,01/40] mount: attach mappings to mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner New
[RFC] apparmor: Enforce progressively tighter permissions for no_new_privs [RFC] apparmor: Enforce progressively tighter permissions for no_new_privs - - - --- 2021-01-20 Eric W. Biederman New
[1/1] process_madvise.2: Add process_madvise man page [1/1] process_madvise.2: Add process_madvise man page - - - --- 2021-01-20 Suren Baghdasaryan New
[2/2] security.capability: fix conversions on getxattr capability conversion fixes 1 - - --- 2021-01-19 Miklos Szeredi New
[1/2] ecryptfs: fix uid translation for setxattr on security.capability capability conversion fixes - - - --- 2021-01-19 Miklos Szeredi New
X.509: Fix crash caused by NULL pointer X.509: Fix crash caused by NULL pointer - - 1 --- 2021-01-19 David Howells New
[no subject] Untitled series #419455 - - 1 --- 2021-01-19 David Howells New
NFSv4.2: fix return value of _nfs4_get_security_label() NFSv4.2: fix return value of _nfs4_get_security_label() - 2 - --- 2021-01-15 Ondrej Mosnacek New
fs: anon_inodes: rephrase to appropriate kernel-doc fs: anon_inodes: rephrase to appropriate kernel-doc - - - --- 2021-01-15 Lukas Bulwahn New
selinux: include a consumer of the new IMA critical data hook selinux: include a consumer of the new IMA critical data hook 1 1 - --- 2021-01-14 Lakshmi Ramasubramanian New
« 1 2 3 410 11 »